Enable job alerts via email!

Information Security Risk Manager

Global Technical Talent

Toronto

Hybrid

CAD 100,000 - 125,000

Full time

7 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in the financial sector is seeking an Information Security Risk Manager to oversee risks and contribute to a global security strategy. This hybrid role requires extensive experience in cybersecurity and consulting, providing opportunities to shape security measures across technology platforms. Ideal candidates will possess at least 8 years of relevant experience and are adept in translating complex technical issues for business stakeholders.

Qualifications

  • 8 years of experience in Information Security Risk Management.
  • Required degree is in Computer Science or a related field.
  • Expert knowledge of IT security and risk disciplines.

Responsibilities

  • Manage information risk for assigned portfolios.
  • Consult on regulatory compliance and lead risk assessments.
  • Contribute to the global security management strategy.

Skills

Cybersecurity
Information Security Risk Management
Technical Translation

Education

Computer Science or related

Job description

Job Title: Information Security Risk Manager
Contract Duration: 2 years
Pay range: C$90- 95/hr
Location:Toronto, ON
Work Type: Hybrid, 2 days in office.Schedule: Monday-Friday, Core business hours

Project Scope:

  • Manage information risk for the assigned portfolios


Key Accountabilities:

Customer:

  • Information Security Risk Manager provides consultation and advice to partners on a broad range of Technology Controls / Information Security programs/policies/standards, and incidents for their own specialized area
  • Conduct project consulting on assessment of risk, definition of required controls, appropriateness of implemented control procedures, vulnerability assessments, and any other relevant areas
  • Lead or contribute to the completion of risk and control design assessments for an application portfolio, articulate and document the impact of control gaps to the business and the overall Bank, risk mitigation and remediation plans, and the remediation strategy document as applicable
  • Contribute to the definition, development, oversight, and advancement of a global security management strategy and framework
  • Ensure technology, processes, and governance are in place to monitor, detect, prevent, and react to both current and emerging technology/security threats against the client's business
  • Develop ongoing Technology Risk reporting, monitoring key trends, and defining metrics to regularly measure control effectiveness for own area
  • Work proactively with technology partners/stakeholders and service/platform owners to ensure all technology security components are integrated into the banks overall Enterprise Architecture, and any control gaps are addressed effectively and efficiently.
  • Consult on Regulatory compliance requirements, reporting, and questions
  • Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
  • Participate in computer security incident responses relevant to business (or enterprise-wide) and represent the respective function and Enterprise position to the business, and the business needs to the incident response team


Shareholder:

  • Adhere to internal policies/procedures, technology control standards, and applicable regulatory guidelines
  • Contribute to the review of internal processes and activities, and assist in identifying potential opportunities for improvement
  • Adhere to and advise on / oversee/monitor/enforce enterprise frameworks and methodologies that relate to technology controls/information security activities
  • Influence behavior to reduce risk and foster a strong technology risk management culture throughout the enterprise
  • Remain informed of emerging issues, industry trends, and/or relevant changes
  • Define/develop/implement/manage standards, policies, procedures, and solutions that mitigate risk and maximize security, availability of service, efficiency, and effectiveness
  • Actively manage relationships with other areas of Technology/businesses / corporate and/or control functions and ensure alignment with enterprise and/or regulatory requirements
  • Keep abreast of emerging issues, trends, and evolving regulatory requirements, and assess potential impacts to the Bank
  • Assess/identify key issues and escalate to appropriate levels and relevant stakeholders where required
  • Maintain a culture of risk management and control, supported by effective processes and sound infrastructure, and in alignment with risk appetite
  • Participate in business-specific / cross-functional / enterprise initiatives as a subject matter expert, helping to identify risk / provide guidance
  • May develop/provide/contribute to complex reporting, analysis, and assessments at the functional or enterprise level


Employee/ Team:

  • Continuously enhance knowledge/expertise in own area
  • Keep current on emerging trends/developments and grow knowledge of the business, analytical tools, and techniques
  • Prioritize and manage own workload to deliver quality results and meet assigned timelines
  • Support a positive work environment that promotes service to the business, quality, innovation, and teamwor,k and ensure timely communication of issues/ points of interest
  • Identify and recommend opportunities to enhance productivity, effectiveness, and operational efficiency
  • Establish effective relationships across multiple business and technology partners, program and project managers
  • Participate in knowledge transfer within the team and business units


Breadth & Depth:

  • Expert knowledge of IT security and risk disciplines and practices
  • Advanced knowledge of organization, technology controls/security/ risk issues
  • May participate in complex, comprehensive, or large projects and initiatives
  • Acts as a lead expert resource in technology controls/information security for project teams, the business/organization, and/or outside vendors

Required Education/ Experience:

  • Degree/Certifications Required: Computer science or related
  • Years of experience: 8 years


Must Haves:

  • Cybersecurity experience
  • Information security risk management experience
  • Able to translate complex technical information for Business stakeholders to consume.


Nice to Have:

  • Security Architecture


About the Company:
Top 10 bank in Canada and North America offering comprehensive financial solutions. Providing retail, commercial, wealth management, and wholesale banking services, we help clients thrive in today's evolving market.

About GTT:
GTT is a minority-owned staffing firm and a subsidiary of Chenega Corporation, a Native American-owned company in Alaska. As a Native American-owned, economically disadvantaged corporation, we highly value diverse and inclusive workplaces. Our clients are Fortune 500 banking, insurance, financial services, and technology companies, along with some of the nation’s largest life sciences, biotech, utility, and retail companies across the US and Canada. We look forward to helping you land your next great career opportunity!

25-21950: #gttca #LI-GTT #LI-Hybrid

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Security Risk Manager

Infotek Consulting Services Inc.

Toronto

Hybrid

CAD 100,000 - 130,000

2 days ago
Be an early applicant

Information Security Risk Manager

ICONMA

Toronto

Hybrid

CAD 90,000 - 130,000

7 days ago
Be an early applicant

Information Security Risk Manager

Global Technical Talent, an Inc. 5000 Company

Toronto

Hybrid

CAD 100,000 - 125,000

7 days ago
Be an early applicant

Information and Security Control Risk Manager

Finance Professionals Inc.

Toronto

Remote

CAD 90,000 - 115,000

2 days ago
Be an early applicant

Senior Risk Manager (Canada)

BlueSnap, Inc

Remote

CAD 85,000 - 120,000

Today
Be an early applicant

Senior Security Consultant - Security Programs Strategic Initiatives

Intello Technologies Inc.

Richmond Hill

Remote

CAD 101,000 - 151,000

9 days ago

Senior Model Risk Manager

HomeEquity Bank

Toronto

Hybrid

CAD 90,000 - 110,000

Today
Be an early applicant

Manager, Risk Insights and Reporting (16 Month Secondment)

Canadian Imperial Bank of Commerce

Toronto

Hybrid

CAD 80,000 - 120,000

Yesterday
Be an early applicant

Credit Risk Manager

Peoples Trust

Toronto

Hybrid

CAD 90,000 - 120,000

6 days ago
Be an early applicant